Skip to content

ROX-33986: Bump go-jose to 4.1.4#19870

Open
rhybrillou wants to merge 1 commit intorelease-4.8from
yann/release-4.8/bump-go-jose-4.1.4
Open

ROX-33986: Bump go-jose to 4.1.4#19870
rhybrillou wants to merge 1 commit intorelease-4.8from
yann/release-4.8/bump-go-jose-4.1.4

Conversation

@rhybrillou
Copy link
Copy Markdown
Contributor

Description

Dependency bump to fix CVE-2026-34986

User-facing documentation

Testing and quality

  • the change is production ready: the change is GA, or otherwise the functionality is gated by a feature flag
  • CI results are inspected

Automated testing

How I validated my change

CI run

@github-actions github-actions bot added the backport PR to backport changes from master to release branch label Apr 7, 2026
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 7, 2026

/konflux-retest central-db-on-push

2 similar comments
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 7, 2026

/konflux-retest central-db-on-push

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 7, 2026

/konflux-retest central-db-on-push

@rhacs-bot
Copy link
Copy Markdown
Contributor

Images are ready for the commit at 095281d.

To use with deploy scripts, first export MAIN_IMAGE_TAG=4.8.10-rc.2-2-g095281d344.

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Apr 7, 2026

/konflux-retest operator-bundle-on-push

@codecov
Copy link
Copy Markdown

codecov bot commented Apr 7, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 48.74%. Comparing base (ed4e96c) to head (095281d).

Additional details and impacted files
@@             Coverage Diff              @@
##           release-4.8   #19870   +/-   ##
============================================
  Coverage        48.73%   48.74%           
============================================
  Files             2595     2595           
  Lines           190828   190828           
============================================
+ Hits             92993    93012   +19     
+ Misses           90520    90507   -13     
+ Partials          7315     7309    -6     
Flag Coverage Δ
go-unit-tests 48.74% <ø> (+<0.01%) ⬆️

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@openshift-ci
Copy link
Copy Markdown

openshift-ci bot commented Apr 7, 2026

@rhybrillou: The following test failed, say /retest to rerun all failed tests or /retest-required to rerun all mandatory failed tests:

Test name Commit Details Required Rerun command
ci/prow/gke-nongroovy-compatibility-tests 095281d link false /test gke-nongroovy-compatibility-tests

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport PR to backport changes from master to release branch

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants